PRIVACY POLICY & COOKIES POLICY

SHOSHOP.PL
https://shoshop.pl
(“Store”)


Dear User,

We respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how your personal data is collected, used, and protected in accordance with the General Data Protection Regulation (GDPR).


1. DATA CONTROLLER

The controller of your personal data is:

Seller:

Artur Sheiderov
SHOSHOP.PL

Registered sole proprietorship (JDG) under Polish law

NIP: 7792458214
REGON: 544144150

Address:
Wierzbięcice 38/1
61-568 Poznań, Poland

Email:
artursheiderov@gmail.com


2. YOUR RIGHTS

You have the right to:

  • access your personal data
  • rectify (correct) your data
  • request deletion of your data
  • restrict processing
  • object to processing
  • data portability
  • lodge a complaint with the President of the Personal Data Protection Office (UODO) in Poland

To exercise your rights, contact us at:
📧 artursheiderov@gmail.com


3. PERSONAL DATA AND PRIVACY

Below you will find detailed information depending on your interaction with the Store.


3.1 Placing an Order

Purpose:
Processing and fulfilling your order

Legal basis:

  • Article 6(1)(b) GDPR – performance of a contract
  • Article 6(1)(c) GDPR – legal obligation

Retention period:

  • Duration of the contract
  • Period required by tax and accounting laws
  • Until expiration of claims

Failure to provide data:
You will not be able to place an order


3.2 Creating an Account

Purpose:
Providing account functionality

Legal basis:
Article 6(1)(b) GDPR – contract

Retention period:
Until account deletion

Failure to provide data:
Account cannot be created


3.3 Contacting Us

Purpose:
Responding to inquiries

Legal basis:

  • Contract or pre-contract actions
  • Article 6(1)(f) GDPR – legitimate interest

Retention period:
Until the end of communication and limitation period

Failure to provide data:
We cannot respond


3.4 Marketing (if consent is given)

Purpose:
Sending promotional offers

Legal basis:
Article 6(1)(a) GDPR – consent

Retention period:
Until consent withdrawal


3.5 Newsletter

Purpose:
Sending newsletters

Legal basis:
Article 6(1)(b) GDPR

Retention period:
Until unsubscribe


3.6 Analytical Activities

Purpose:
Improving the Store and user experience

Legal basis:
Article 6(1)(f) GDPR – legitimate interest

Retention period:
Until cookies are deleted


3.7 Claims and Legal Protection

Purpose:
Establishing, pursuing, or defending claims

Legal basis:
Article 6(1)(f) GDPR

Retention period:
Until limitation period expires


4. TYPES OF COLLECTED DATA

We may collect:

  • first and last name
  • delivery address
  • email address
  • phone number
  • order details
  • IP address
  • browser and technical data

5. DATA RECIPIENTS

Your data may be shared with:

  • payment providers (e.g. Stripe)
  • courier and postal services
  • hosting providers
  • IT service providers
  • accounting services

Data is shared only to the extent necessary.


6. DATA TRANSFER OUTSIDE THE EU

Data is not transferred outside the European Union, except where required by payment providers such as Stripe, which comply with GDPR.


7. DATA RETENTION PERIOD

Personal data is stored:

  • for the duration of the contract
  • as required by law
  • until claims expire


8. DATA SECURITY

We apply appropriate security measures, including:

  • SSL encryption
  • secure hosting
  • restricted access to data

9. COOKIES POLICY

The Store uses cookies to:

  • maintain user sessions
  • improve performance
  • analyze traffic
  • support marketing activities

Cookies:

  • are stored on your device
  • do not modify your system

Managing Cookies

You can:

  • delete cookies
  • block cookies
  • change browser settings

Instructions are available in your browser help section.


10. ANALYTICS

We analyze:

  • user behavior
  • time spent on pages
  • clicks and navigation

This helps improve the Store.


11. THIRD-PARTY SERVICES

We use external services such as:

  • payment providers
  • hosting services
  • email systems
  • analytics tools

They process data only on our instructions.


12. PUBLIC AUTHORITIES

We may share data with public authorities if required by law.


13. PUBLICATION OF DATA

If you post a review, your name and content may be visible to other users.

Your email address is not shared unless you disclose it yourself.


14. FINAL PROVISIONS

This Privacy Policy is effective from the date of publication.

In matters not regulated herein, GDPR and Polish law apply.

Кошик